Questions tagged [self-signed]
Self signed certificates.
67 questions
2
votes
2
answers
843
views
Security of certificates issued by an internal CA
For local development of our website example.com, we want to setup a test environment with https enabled hence we need some for of SSL certificates.
Are self-issued certificates the way to go? Options ...
0
votes
1
answer
215
views
What is the best way to ensure a secure communication between two client devices without access to internet, CA, or pre-shared keys
I'm trying to create an application that should allow two devices (two phones, two computers, or a phone and a computer) to verify each other in some way to later be able to securely connect to each ...
1
vote
1
answer
251
views
Why does AWS strongly recommend a non-self-signed, code-signing certificate?
I am developing a hardware device that utilizes AWS IoT OTA via FreeRTOS. On this AWS web page, it says
We recommend that you purchase a code-signing certificate from a
company with a good ...
2
votes
1
answer
95
views
SSL cert for mailserver, which domain? mail client refuses self-signed
I've got a mailserver and the hostname is mx.domain.com. Of course the server is configured to send emails to $mydomain and/or $myhostname.$mydomain in Postfix. Do I need to create the CSR/key for the ...
0
votes
1
answer
188
views
Does self-signed encryption certificate violate "no multi-use keys" principle?
Say that I have generated an RSA keypair, which I intend to publish only for use with RSA-KEM; I can see that this is provisioned for:
The intended application for the key MAY be indicated in the key ...
1
vote
0
answers
143
views
Is it fine if I share a .pfx self signed certificate generated inside my machine with other users to test and use PnPCore SDK
We want to develop some Azure functions which use PnPCore SDK. For testing purposes, I registered an Azure app which uses self-signed certificate for authentication.
Now I configured the Azure app ...
1
vote
3
answers
661
views
self signed certificate
I read a lot of articles about self signed certificates and I'm not exactly sure if I'm getting near to what I want to actually achieve.
I'm trying to implement a self signed certificate so that the ...
1
vote
1
answer
170
views
With selfhosting email server, selfsigned certificate, does it make a difference with PGP mail, What can be leaked?
If we are self hosting our own email server with mydomain.com with a self sign CA for S/MIME. What are some possible ways that our email content can get leaked?
Then if we use PGP email, does it make ...
1
vote
1
answer
651
views
Digital Signature Generation
In short, I need to place a Digital Signature into slot 9c of my Yubikey. If you generate the certificate from the Yubikey; then the private key is not exportable. So I'm attempting to generate the ...
2
votes
1
answer
860
views
Why a public key must be signed with its private pair in PGP
I know about the trust web in PGP. When you sign a key, everybody that trusts you will trust the person with that key. But what is the point of self-signing a key when anybody else can do that with ...
0
votes
0
answers
206
views
Client Identification using Self Signed Certificates
Taking the concept from the Gemini protocol that allows clients to identify themselves using their own self-signed certificate - is this a valid concept that could be used in other protocols and what ...
0
votes
1
answer
323
views
Are self-signed certificates better for local usage?
When generating a certificate what would more secure - generating a self-signed certificate using PGP or using a public CA like Let's Encrypt? We are using it for signing and encrypting.
What are the ...
1
vote
1
answer
1k
views
How insecure are self-signed certificates? Why does Tor still use them?
How insecure are self-signed certificates?
Why does Tor still use them?
2
votes
1
answer
280
views
Reverse Shell for managing unreachable remote computers
In the near future, I will have about 50 remote computers to manage. These will be physical PCs running Debian 11, distributed all over the country. They will automatically perform a special kind of ...
0
votes
0
answers
122
views
Is it possible for a company to buy a signing certificate so that everything it signs (Software,SSL, Documents) states its from that company?
If I work for a company that wants to sign its own certificates for its website, documents and software it writes, is it possible? I have read a couple of post on here from around 10/8 years ago but ...